roomplus_2.3.0.58_w.exe

联众安装程序

Beijing Globallink Computer Technology Co.,Ltd

Publisher:
北京联众电脑技术有限公司  (signed by Beijing Globallink Computer Technology Co.,Ltd)

Product:
联众安装程序

Version:
1, 0, 0, 38

MD5:
1f201f8a62e69d54c76c8720fe2f87ff

SHA-1:
a47626ea45f2f63abc460b9802a8e28b0cbc209f

SHA-256:
f4210675688e0e13cfbf9a5fbb47fe581d6bb0d49f38b2a064394d908e410d3a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 4:10:12 AM UTC  (today)

File size:
1.8 MB (1,893,640 bytes)

Product version:
1, 0, 0, 38

Copyright:
版权所有 (C) 1998 - 2013

Original file name:
GLSetup2.EXE

File type:
Executable application (Win32 EXE)

Language:
Chinese (Simplified, China)

Common path:
C:\users\{user}\appdata\local\temp\roomplus_2.3.0.58_w.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
8/22/2011 7:00:00 PM

Valid to:
9/21/2014 6:59:59 PM

Subject:
CN="Beijing Globallink Computer Technology Co.,Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beijing Globallink Computer Technology Co.,Ltd", L=BeiJing, S=BeiJing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
280D89782D5170CC6867178F0FFDFC9D

File PE Metadata
Compilation timestamp:
1/26/2014 3:44:06 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
24576:M1AD4WLNG7IkSMDbG7p22i+97nO4HMMVcaNXClchp7US9Zh/PRkwXW8uICad7G5:M1QDLNyIkR2a+5nXClchpYaZZfuq7G

Entry address:
0x344CF

Entry point:
55, 8B, EC, 6A, FF, 68, D0, 35, 44, 00, 68, 68, 46, 43, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, 60, 16, 44, 00, 59, 83, 0D, 3C, 23, 45, 00, FF, 83, 0D, 40, 23, 45, 00, FF, FF, 15, E4, 16, 44, 00, 8B, 0D, 54, 16, 45, 00, 89, 08, FF, 15, E0, 16, 44, 00, 8B, 0D, 50, 16, 45, 00, 89, 08, A1, DC, 16, 44, 00, 8B, 00, A3, 38, 23, 45, 00, E8, 29, 01, 00, 00, 39, 1D, 30, E8, 44, 00, 75, 0C, 68, 64, 46, 43, 00, FF, 15, D8, 16...
 
[+]

Entropy:
7.7311

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
256 KB (262,144 bytes)

Scan roomplus_2.3.0.58_w.exe - Powered by Reason Core Security